https://github.com/osquery/osquery logo
Title
a

allister

05/09/2022, 3:27 AM
I know people who specifically end up with sumologic parsing logs, but they seem to have also been using kinesis on the 'front of the funnel'. We shipped logs from disk in the past but now have Zentral
z

Zachary

05/09/2022, 2:14 PM
ya will prob go down Zentral/Fleet path was just curious.
z

zwass

05/09/2022, 5:52 PM
Fleet -> Kinesis -> Sumo has defniitely been done before. A direct Fleet -> Sumo logging plugin would probably not be hard to build.
z

Zachary

05/10/2022, 3:56 PM
ya ive done integrations with sumo of just sending a json file to sumo via http endpoint
f

fritz

05/12/2022, 12:48 PM
*.
:all: 1